CVE-2026-62817Disclosure(microsoft / windows_10_1809)

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch microsoft windows_10_1809 systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Out-of-bounds write in Windows DNS allows an unauthorized attacker to execute code over an adjacent network.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • windows_10_1809
  • windows_10_21h2
  • windows_10_22h2
  • windows_11_23h2

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked 2d ago at 1 mentions (2026-08-12); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
windows_10_1809windows_10_21h2windows_10_22h2windows_11_23h2windows_11_24h2windows_11_25h2windows_11_26h1windows_server_2019windows_server_2022windows_server_2025

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-08-12: 1Mentions · 2026-08-25: 1Mentions · 2026-09-09: 1Patch / Workaround · 2026-08-12: 1Patch / Workaround · 2026-08-25: 1Technical Details · 2026-08-12: 1Technical Details · 2026-08-25: 1Technical Details · 2026-09-09: 108-1208-2509-09
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets1 URL
Classification over time
DateTotalLabels
2026-08-121
Patch1
2026-08-251
Disclosure1
2026-09-091
Disclosure1
Full discourse3 posts
  • kawn@kawn2020
    Disclosure

    #windowsupdate #microsoft つづき ・CVE-2026-62817 Windows DNS Server Remote Code Execution Vulnerability ・CVE-2026-62820 Windows DNS Server Remote Code Execution Vulnerability ・CVE-2026-62823 Windows DHCP Server のリモートでコードが実行される脆弱性 つづく…

    Post summary

    The tweet announces three new CVEs (2026‑62817, 2026‑62820, 2026‑62823) involving remote code execution vulnerabilities in Windows DNS and DHCP services, without providing PoC, exploit code, or patches.

    1000091
    87 followersView on X
  • Tochukwu Okonkwor@tokonkwor
    Disclosure

    The wormable Windows DNS Server flaw from Tuesday is CVE-2026-62878, CVSS 9.8. Unauthenticated, remote, no user interaction. CVE-2026-62817 is a different DNS RCE in the same batch. Both worth patching. Only one is wormable. Internet-facing DNS first.

    Post summary

    The post announces two DNS Server CVEs with CVSS details, notes wormability and patch necessity, but provides no PoC or exploitation evidence.

    0000030
    24 followersView on X
  • Windows Forum@windowsforum
    Patch

    🚨 Windows DNS Server has an RCE flaw, and domain controllers may be in the blast radius. Patch CVE-2026-62817 now—because “it’s just DNS” is how incident reports begin. https://windowsforum.com/security-alerts.84/cve-2026-62817-patch-windows-dns-server-rce-flaw.442638/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #SecurityUpdates #RemoteCodeExecution #WindowsDnsServer #Cve202662817 https://t.co/XUK7gE3rh6

    Post summary

    The post announces a patch for Windows DNS Server CVE‑2026‑62817, highlighting an RCE flaw that could impact domain controllers and urges users to apply the fix.

    0000066
    1.3K followersView on X
CPE platform detail19 entries

19 of 19 entries

PartVendorProductVersionTarget SWTarget HW
OSmicrosoftwindows_10_1809--x64
OSmicrosoftwindows_10_1809--x86
OSmicrosoftwindows_10_21h2--arm64
OSmicrosoftwindows_10_21h2--x64
OSmicrosoftwindows_10_21h2--x86
OSmicrosoftwindows_10_22h2--arm64
OSmicrosoftwindows_10_22h2--x64
OSmicrosoftwindows_10_22h2--x86
OSmicrosoftwindows_11_23h2--arm64
OSmicrosoftwindows_11_23h2--x64
OSmicrosoftwindows_11_24h2--arm64
OSmicrosoftwindows_11_24h2--x64
OSmicrosoftwindows_11_25h2--arm64
OSmicrosoftwindows_11_25h2--x64
OSmicrosoftwindows_11_26h1--arm64
OSmicrosoftwindows_11_26h1--x64
OSmicrosoftwindows_server_2019---
OSmicrosoftwindows_server_2022---
OSmicrosoftwindows_server_2025---

Explore more